3 ms·
Hi! Please add google authenticator as 2fa. SMS is horribly broken as 2fa.
by ratiolat 6y ago
Hi!
Please add google authenticator as 2fa. SMS is horribly broken as 2fa.
- hombre_fatal 6y agoThe keyword you're looking for is TOTP/one-time token. Google Authenticator itself is basically the worst thing your users could be using since it has no key export and users are going to lose/buy new phones. Least replace it with Authy if you're going to bring this up any time a Twilio employee rears their head. Google Authenticator needs to die, not be conflated with one-time token 2fa. One last thing, since it seems to be a mission for you. 2fa, especially via unbackupable one-time tokens (Google Authenticator) may introduce more security vulns. It's not free. And not something a company should probably implement if they didn't give it any thought until an HN comment got them to make a ticket for it. Someone has gotten into both my bank account (BOA) and my Amazon with the ol "lol lost my phone with 2fa enabled" customer support channel and customer support just went "ah no prob, here you go."
- gabrielsroka 6y ago> Google Authenticator ... has no key export and users are going to ... buy new phones Actually, it does (finally!). Not as great as Authy, though.
- toomuchtodo 6y agoAnd Google could deprecate their authenticator app at any time. Authy is much more likely to stick around.
- aspenmayer 6y agoIs it live? I tried it on my old iPhone and I didn’t see how in the interface. I think that feature is Android only for now.[1] What you can do is save the QR code or equivalent data at time of two-factor creation and then re-add it to any device at any time. [1] https://security.googleblog.com/2020/05/introducing-portability-of-google.html https://security.googleblog.com/2020/05/introducing-portabil...
- gabrielsroka 6y agoIt was just recently released for Android. The iPhone app hasn't been updated in over a year.